Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-8613

Опубликовано: 11 апр. 2017
Источник: ubuntu
Приоритет: medium
CVSS2: 1.9
CVSS3: 6.5

Описание

Stack-based buffer overflow in the megasas_ctrl_get_info function in QEMU, when built with SCSI MegaRAID SAS HBA emulation support, allows local guest users to cause a denial of service (QEMU instance crash) via a crafted SCSI controller CTRL_GET_INFO command.

РелизСтатусПримечание
devel

released

1:2.5+dfsg-1ubuntu5
esm-infra-legacy/trusty

released

2.0.0+dfsg-2ubuntu1.22
precise

DNE

trusty

released

2.0.0+dfsg-2ubuntu1.22
trusty/esm

released

2.0.0+dfsg-2ubuntu1.22
upstream

needs-triage

vivid

ignored

end of life
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

wily

released

1:2.3+dfsg-5ubuntu9.2

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

precise

not-affected

code not present
trusty

DNE

trusty/esm

DNE

upstream

needs-triage

vivid

DNE

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

wily

DNE

Показывать по

1.9 Low

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

redhat
около 10 лет назад

Stack-based buffer overflow in the megasas_ctrl_get_info function in QEMU, when built with SCSI MegaRAID SAS HBA emulation support, allows local guest users to cause a denial of service (QEMU instance crash) via a crafted SCSI controller CTRL_GET_INFO command.

CVSS3: 6.5
nvd
почти 9 лет назад

Stack-based buffer overflow in the megasas_ctrl_get_info function in QEMU, when built with SCSI MegaRAID SAS HBA emulation support, allows local guest users to cause a denial of service (QEMU instance crash) via a crafted SCSI controller CTRL_GET_INFO command.

CVSS3: 6.5
debian
почти 9 лет назад

Stack-based buffer overflow in the megasas_ctrl_get_info function in Q ...

CVSS3: 6.5
github
больше 3 лет назад

Stack-based buffer overflow in the megasas_ctrl_get_info function in QEMU, when built with SCSI MegaRAID SAS HBA emulation support, allows local guest users to cause a denial of service (QEMU instance crash) via a crafted SCSI controller CTRL_GET_INFO command.

fstec
почти 9 лет назад

Уязвимость эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании

1.9 Low

CVSS2

6.5 Medium

CVSS3